Information leakage vulnerability in Active Directory Integration / LDAP Integration 4.1.9

The Active Directory Integration / LDAP Integration plugin for WordPress is vulnerable to a security issue in all versions up to and including 4.1.9. This vulnerability makes it possible for unauthenticated attackers to access data from the plugin’s log files, which could include errors and other sensitive information. The issue occurs because the plugin fails to delete log files when they are no longer needed.

Detected in:

Active Directory Integration / LDAP Integration fixed vulnerable versions: >= * <= 4.1.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.